First published: Tue Nov 14 2023(Updated: )
Improper access control in firmware for some Intel(R) Optane(TM) SSD products may allow an unauthenticated user to potentially enable information disclosure via physical access.
Credit: secure@intel.com
Affected Software | Affected Version | How to fix |
---|---|---|
All of | ||
Intel Optane Memory H20 With Solid State Storage Firmware | <u4110553-g004 | |
Intel Optane Memory H20 With Solid State Storage | ||
All of | ||
Intel Optane Ssd 905p Firmware | <e2010650 | |
Intel Optane Ssd 905p | ||
All of | ||
Intel Optane Ssd Dc P4800x Firmware | <e2010650 | |
Intel Optane Ssd Dc P4800x | ||
All of | ||
Intel Optane Ssd Dc P4801x Firmware | <e2010650 | |
Intel Optane Ssd Dc P4801x |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-27879 is a vulnerability in the firmware of some Intel Optane SSD products that may allow an unauthenticated user to potentially enable information disclosure via physical access.
Intel Optane Memory H20 With Solid State Storage Firmware versions up to but not including u4110553-g004 and Intel Optane SSD 905p Firmware versions up to but not including e2010650 are affected.
CVE-2023-27879 has a severity rating of 6.8, which is considered medium.
An unauthenticated user can exploit CVE-2023-27879 by gaining physical access to the vulnerable Intel Optane SSD products.
Yes, Intel has released a firmware update to address the vulnerability. Please refer to the Intel advisory linked in the references for more information.